<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Chi Tran &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/author/chi-tran/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 14 Nov 2025 00:15:12 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Amazon Inspector detects over 150,000 malicious packages linked to token farming campaign</title>
		<link>https://noise.getoto.net/2025/11/14/amazon-inspector-detects-over-150000-malicious-packages-linked-to-token-farming-campaign/</link>
		
		<dc:creator><![CDATA[Chi Tran]]></dc:creator>
		<pubDate>Fri, 14 Nov 2025 00:15:12 +0000</pubDate>
				<category><![CDATA[Amazon Inspector]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[supply chain]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=a859763008ff5911236bb42d8e9f6556</guid>

					<description><![CDATA[Amazon Inspector security researchers have identified and reported over 150,000 packages linked to a coordinated tea.xyz token farming campaign in the npm registry. This is one of the largest package flooding incidents in open source registry history, and represents a defining moment in supply chain security, far surpassing the initial 15,000 packages reported by Sonatype […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Defending against supply chain attacks like Chalk/Debug and the Shai-Hulud worm</title>
		<link>https://noise.getoto.net/2025/10/02/defending-against-supply-chain-attacks-like-chalk-debug-and-the-shai-hulud-worm/</link>
		
		<dc:creator><![CDATA[Chi Tran]]></dc:creator>
		<pubDate>Thu, 02 Oct 2025 16:43:02 +0000</pubDate>
				<category><![CDATA[Amazon Inspector]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=34de4487fcf834c62079e0a91ef52b3f</guid>

					<description><![CDATA[Building on top of open source packages can help accelerate development. By using common libraries and modules from npm, PyPI, Maven Central, NuGet, and others, teams can focus on writing code that is unique to their situation. These open source package registries host millions of packages that are integrated into thousands of programs daily. Unfortunately, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Identify Java nested dependencies with Amazon Inspector SBOM Generator</title>
		<link>https://noise.getoto.net/2024/02/12/identify-java-nested-dependencies-with-amazon-inspector-sbom-generator/</link>
		
		<dc:creator><![CDATA[Chi Tran]]></dc:creator>
		<pubDate>Mon, 12 Feb 2024 17:55:15 +0000</pubDate>
				<category><![CDATA[Amazon Inspector]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[log4j]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9c7d2ef61b5d9ddaed634a82d295d804</guid>

					<description><![CDATA[Amazon Inspector is an automated vulnerability management service that continually scans Amazon Web Services (AWS) workloads for software vulnerabilities and unintended network exposure. Amazon Inspector currently supports vulnerability reporting for Amazon Elastic Compute Cloud (Amazon EC2) instances, container images stored in Amazon Elastic Container Registry (Amazon ECR), and AWS Lambda. Java archive files (JAR, WAR, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 26/79 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2026-03-08 20:51:05 by W3 Total Cache
-->